Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-107797. PoCs published by indoushka.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Imagevue r16 by injecting malicious JavaScript via the 'amount' parameter in the upload.php script. The payload triggers an alert dialog, proving arbitrary script execution in the context of the affected site.
Description
Imagevue r16 - 'amount' Cross-Site Scripting
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Imagevue r16 by injecting malicious JavaScript via the 'amount' parameter in the upload.php script. The payload triggers an alert dialog, proving arbitrary script execution in the context of the affected site.